cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
330
Views
0
Helpful
1
Replies

ASA Access List Inbound

GRANT3779
Spotlight
Spotlight

I think I know the answer to this, but questioning it as I am implementing something which is dependent on me being correct.

If a connection is established from Inside to Outside successfully, will that traffic be allowed back into the ASA due to it being an "established" connection and Ignore any ACL I might have on the Outside Interface (Inbound)? I think yes...

1 Accepted Solution

Accepted Solutions

Ajay Saini
Level 7
Level 7

That's true. ASA being a stateful appliance, will allow reply traffic and there is no need for allowing that traffic on outside interface acl. So, acl will be bypassed for already established connection.

Only for traffic initiated from outside, we would need an acl on outside interface.

-

AJ

View solution in original post

1 Reply 1

Ajay Saini
Level 7
Level 7

That's true. ASA being a stateful appliance, will allow reply traffic and there is no need for allowing that traffic on outside interface acl. So, acl will be bypassed for already established connection.

Only for traffic initiated from outside, we would need an acl on outside interface.

-

AJ

Review Cisco Networking for a $25 gift card